Cookie information
DRAFT – REQUIRES LEGAL REVIEW. This text is engineering documentation of current product behavior. It is not lawyer-approved and is not a compliance certification.
REZA AI uses essential cookies for authentication and security. Optional first-party product analytics are recorded only after explicit analytics consent via the banner or Cookie settings. No third-party marketing/analytics scripts are enabled by default in 1.0.
Classification inventory (draft)
better-auth.session_token (and related auth cookies)
Essential
Signed-in session / authentication.
Retention note: Session or auth-configured lifetime
CSRF / security cookies (framework)
Essential
Protect authenticated state-changing requests.
Retention note: Short-lived / session
reza-locale / theme (localStorage or equivalent)
Preference
UI language and display preference.
Retention note: Until cleared by the user
reza-cookie-consent-v1 (localStorage)
Essential (preference)
Stores whether optional analytics were accepted.
Retention note: Until cleared by the user
First-party product analytics (AuditEvent funnel)
Analytics
Signed-in product funnel events (e.g. lesson_complete) stored in REZA AI DB when analytics consent is granted. No third-party analytics vendor is shipped in 1.0.
Retention note: Until erased / operator retention policy — LEGAL_REVIEW_REQUIRED
Declining analytics keeps core learning available. This page is not a compliance certification.
Related: Privacy · Impressum · Cookie settings